CVE-2020-24383

Severity CVSS v4.0:
Pending analysis
Type:
CWE-125 Out-of-bounds Read
Publication date:
11/12/2020
Last modified:
12/10/2023

Description

An issue was discovered in FNET through 4.6.4. The code for processing resource records in mDNS queries doesn't check for proper '\0' termination of the resource record name string, leading to an out-of-bounds read, and potentially causing information leak or Denial-or-Service.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:butok:fnet:*:*:*:*:*:*:*:* 4.6.4 (including)